CVE-2025-1674: Out of bounds read when unpacking DNS answers
Published Feb 25, 2025
·Updated
A lack of input validation allows for out of bounds reads caused by malicious or malformed packets.
Affected Software
1 affected component
zephyrproject zephyr<=4.0
Event History
Feb 25, 2025
CVE Published
via MITRE·07:18 AM
Data Sourced
via MITRE·07:18 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-1674?
CVE-2025-1674 is classified as a high-severity vulnerability due to its potential for allowing out of bounds reads.
2
How do I fix CVE-2025-1674?
To fix CVE-2025-1674, implement proper input validation to mitigate the effects of malicious or malformed packets.
3
What software is affected by CVE-2025-1674?
CVE-2025-1674 affects versions of the Zephyr project up to and including 4.0.
4
What type of vulnerability is CVE-2025-1674?
CVE-2025-1674 is a vulnerability due to lack of input validation which leads to out of bounds reads.
5
What are the consequences of CVE-2025-1674?
Exploitation of CVE-2025-1674 can lead to unauthorized data access or system instability.